Security News

Cisco WebEx extension opens Chrome users to drive-by malware attacks (Help Net Security)
2017-01-24 16:41

Windows users who have the widely used Cisco WebEx extension installed on Chrome are in danger of getting silently hacked when visiting a malicious website. The vulnerability, which can be...

St. Louis Public Library Recovers from Ransomware Attack (Threatpost)
2017-01-24 16:40

Services are being restored to the St. Louis Public Library computer system after a ransomware attack impacted access to machines and data at all 17 branches.

Hadoop, CouchDB Next Targets in Wave of Database Attacks (Threatpost)
2017-01-20 19:18

Insecure Hadoop and CouchDB installations are the latest attack targets of cybercriminals who are hijacking and deleting stolen data.

Fruitfly: Unusual Mac backdoor used for tightly targeted attacks? (Help Net Security)
2017-01-18 21:43

Researchers have found and analyzed a Mac backdoor that is unusual in many ways. The malware – detected as OSX.Backdoor.Quimitchin by Malwarebytes but dubbed Fruitfly by Apple – is believed to...

Significant decrease in Locky ransomware attacks (Help Net Security)
2017-01-17 12:45

Locky ransomware attacks have dramatically decreased during December 2016, according to Check Point. Locky, which uses massive spam campaigns as a major distribution vector, only surfaced in 2016...

Friday Squid Blogging: 1874 Giant Squid Attack (Schneier on Security)
2017-01-13 22:52

This article discusses a giant squid attack on a schooner off the coast of Sri Lanka in 1874. As usual, you can also use this squid post to talk about the security stories in the news that I...

Twofish Power Analysis Attack (Schneier on Security)
2017-01-12 12:28

New paper: "A Simple Power Analysis Attack on the Twofish Key Schedule." This shouldn't be a surprise; these attacks are devastating if you don't take steps to mitigate them. The general issue is...

ShadowBrokers Selling Windows Exploits, Attack Tools (Threatpost)
2017-01-11 20:04

The ShadowBrokers are selling a cache of Windows exploits and attack tools for 750 Bitcoin.

Ransom is the main motivation behind cyber attacks (Help Net Security)
2017-01-11 13:00

49% of businesses confirmed being the subject of a ransom campaign in 2016, according to Radware. What’s more, 27% of IT professionals surveyed chose data leakage or loss as a key concern when...

MongoDB Attacks Jump From Hundreds to 28,000 In Just Days (Threatpost)
2017-01-09 22:50

Security researchers report a massive uptick in the number of MongoDB databases hijacked and held for ransom.